配置单段动态VPWS示例-使用LSP隧道
单段动态VPWS的公网隧道可以是LSP隧道。
配置思路
采用如下的思路配置单段动态VPWS(使用LSP隧道)的基本功能:
在骨干网上运行IGP路由协议,使骨干网各设备能互通。
在骨干网上配置MPLS基本能力,建立LSP隧道。且PW两端的PE之间要建立MPLS LDP远端对等体关系。
在PE上创建VPWS连接。
操作步骤
- 配置CE上接入PE的接口的IP地址
# 配置CE1。
<HUAWEI> system-view
[~HUAWEI] sysname CE1
[*HUAWEI] commit
[~CE1] interface gigabitethernet 1/0/0
[*CE1-GigabitEthernet1/0/0] undo shutdown
[*CE1-GigabitEthernet1/0/0] quit
[*CE1] interface gigabitethernet 1/0/0.1
[*CE1-GigabitEthernet1/0/0.1] vlan-type dot1q 1
[*CE1-GigabitEthernet1/0/0.1] ip address 10.10.1.1 24
[*CE1-GigabitEthernet1/0/0.1] undo shutdown
[*CE1-GigabitEthernet1/0/0.1] commit
[~CE1-GigabitEthernet1/0/0.1] quit
# 配置CE2。
<HUAWEI> system-view
[~HUAWEI] sysname CE2
[*HUAWEI] commit
[~CE2] interface gigabitethernet 1/0/0
[*CE2-GigabitEthernet1/0/0] undo shutdown
[*CE2-GigabitEthernet1/0/0] quit
[*CE2] interface gigabitethernet 1/0/0.1
[*CE2-GigabitEthernet1/0/0.1] vlan-type dot1q 2
[*CE2-GigabitEthernet1/0/0.1] ip address 10.10.1.2 24
[*CE2-GigabitEthernet1/0/0.1] undo shutdown
[*CE2-GigabitEthernet1/0/0.1] commit
[~CE2-GigabitEthernet1/0/0.1] quit
- 配置MPLS骨干网的IGP
在MPLS骨干网上配置IGP,本示例中使用OSPF。有关OSPF的配置,请参见《NetEngine 8000 配置指南 IP路由》中的“OSPF配置”。
具体配置过程略。
- 使能MPLS,建立隧道和LDP远端会话
在MPLS骨干网上使能MPLS,并在PE之间建立LSP隧道和LDP remote session。
具体配置过程略。有关MPLS的配置,请参见《NetEngine 8000 配置指南 MPLS》。
完成此步配置后,执行命令display mpls ldp session可以看到PE之间、PE与P之间建立了LDP Session,且状态为Operational。
以PE1的显示为例。
<PE1> display mpls ldp session
LDP Session(s) in Public Network Codes: LAM(Label Advertisement Mode), SsnAge Unit(DDD:HH:MM) An asterisk (*) before a session means the session is being deleted. -------------------------------------------------------------------------- PeerID Status LAM SsnRole SsnAge KASent/Rcv -------------------------------------------------------------------------- 192.168.3.3:0 Operational DU Passive 000:00:00 4/5 192.168.4.4:0 Operational DU Passive 000:00:02 10/10 -------------------------------------------------------------------------- TOTAL: 2 Session(s) Found.
- 创建VPWS连接
在PE1、PE2上使能MPLS L2VPN,在两个PE上创建VPWS连接。
# 配置PE1。
[~PE1] mpls l2vpn
[*PE1-l2vpn] quit
[*PE1] interface gigabitethernet 1/0/0
[*PE1-GigabitEthernet1/0/0] undo shutdown
[*PE1-GigabitEthernet1/0/0] quit
[*PE1] interface gigabitethernet 1/0/0.1
[*PE1-GigabitEthernet1/0/0.1] vlan-type dot1q 1
[*PE1-GigabitEthernet1/0/0.1] mpls l2vc 192.168.3.3 100
[*PE1-GigabitEthernet1/0/0.1] undo shutdown
[*PE1-GigabitEthernet1/0/0.1] commit
[~PE1-GigabitEthernet1/0/0.1] quit
# 配置PE2。
[~PE2] mpls l2vpn
[*PE2-l2vpn] quit
[*PE2] interface gigabitethernet 1/0/0
[*PE2-GigabitEthernet1/0/0] undo shutdown
[*PE2-GigabitEthernet1/0/0] quit
[*PE2] interface gigabitethernet1/0/0.1
[*PE2-GigabitEthernet1/0/0.1] vlan-type dot1q 2
[*PE2-GigabitEthernet1/0/0.1] mpls l2vc 192.168.2.2 100
[*PE2-GigabitEthernet1/0/0.1] undo shutdown
[*PE2-GigabitEthernet1/0/0.1] commit
[~PE2-GigabitEthernet1/0/0.1] quit
- 验证配置结果
在PE上查看VPWS连接信息,可以看到建立了一条VC,状态为UP。
以PE1的显示为例:
<PE1> display mpls l2vc interface gigabitethernet 1/0/0.1
*client interface : GigabitEthernet1/0/0.1 is up Administrator PW : no session state : up AC status : up VC state : up Label state : 0 Token state : 0 VC ID : 100 VC type : VLAN destination : 192.168.3.3 local group ID : 0 remote group ID : 0 local VC label : 18 remote VC label : 18 local AC OAM State : up local PSN OAM State : up local forwarding state : forwarding local status code : 0x0 (forwarding) remote AC OAM State : up remote PSN OAM state : up remote forwarding state: forwarding remote status code : 0x0 (forwarding) ignore standby state : no BFD for PW : unavailable VCCV State : -- manual fault : not set active state : active forwarding entry : exist OAM Protocol : -- OAM Status : -- OAM Fault Type : -- PW APS ID : -- PW APS Status : -- TTL Value : 1 link state : up local VC MTU : 1500 remote VC MTU : 1500 local VCCV : alert ttl lsp-ping bfd remote VCCV : alert ttl lsp-ping bfd local control word : disable remote control word : disable tunnel policy name : -- PW template name : -- primary or secondary : primary load balance type : flow Access-port : false Switchover Flag : false VC tunnel info : 1 tunnels NO.0 TNL type : ldp, TNL ID : 0x0000000001004c4b43 create time : 0 days, 0 hours, 6 minutes, 29 seconds up time : 0 days, 0 hours, 5 minutes, 21 seconds last change time : 0 days, 0 hours, 5 minutes, 21 seconds VC last up time : 2012/12/05 02:50:41 VC total up time : 0 days, 0 hours, 5 minutes, 21 seconds CKey : 1 NKey : 1493172332 PW redundancy mode : frr AdminPw interface : -- AdminPw link state : -- Forward state : send inactive, receive inactive Diffserv Mode : uniform Service Class : -- Color : -- DomainId : -- Domain Name : --
CE1和CE2应能相互Ping通。
以CE1的显示为例:
<CE1> ping 10.10.1.2
PING 10.10.1.2: 56 data bytes, press CTRL_C to break Reply from 10.10.1.2: bytes=56 Sequence=1 ttl=255 time=6 ms Reply from 10.10.1.2: bytes=56 Sequence=2 ttl=255 time=2 ms Reply from 10.10.1.2: bytes=56 Sequence=3 ttl=255 time=2 ms Reply from 10.10.1.2: bytes=56 Sequence=4 ttl=255 time=3 ms Reply from 10.10.1.2: bytes=56 Sequence=5 ttl=255 time=2 ms --- 10.10.1.2 ping statistics --- 5 packet(s) transmitted 5 packet(s) received 0.00% packet loss round-trip min/avg/max = 2/3/6 ms
配置文件
CE1的配置文件
#
sysname CE1
#
interface GigabitEthernet1/0/0
undo shutdown
#
interface GigabitEthernet1/0/0.1
vlan-type dot1q 1
ip address 10.10.1.1 255.255.255.0
#
return
PE1的配置文件
#
sysname PE1
#
mpls lsr-id 192.168.2.2
#
mpls
#
mpls l2vpn
#
mpls ldp
#
mpls ldp remote-peer 192.168.3.3
remote-ip 192.168.3.3
#
interface GigabitEthernet1/0/0
undo shutdown
#
interface GigabitEthernet1/0/0.1
vlan-type dot1q 1
mpls l2vc 192.168.3.3 100
#
interface GigabitEthernet2/0/0
undo shutdown
ip address 10.1.1.1 255.255.255.0
mpls
mpls ldp
#
interface LoopBack0
ip address 192.168.2.2 255.255.255.255
#
ospf 1
area 0.0.0.0
network 192.168.2.2 0.0.0.0
network 10.1.1.0 0.0.0.255
#
return
P的配置文件
#
sysname P
#
mpls lsr-id 192.168.4.4
#
mpls
#
mpls ldp
#
interface GigabitEthernet1/0/0
undo shutdown
ip address 10.1.1.2 255.255.255.0
mpls
mpls ldp
#
interface GigabitEthernet2/0/0
undo shutdown
ip address 10.2.2.1 255.255.255.0
mpls
mpls ldp
#
interface LoopBack0
ip address 192.168.4.4 255.255.255.255
#
ospf 1
area 0.0.0.0
network 192.168.4.4 0.0.0.0
network 10.1.1.0 0.0.0.255
network 10.2.2.0 0.0.0.255
#
return
PE2的配置文件
#
sysname PE2
#
mpls lsr-id 192.168.3.3
#
mpls
#
mpls l2vpn
#
mpls ldp
#
mpls ldp remote-peer 192.168.2.2
remote-ip 192.168.2.2
#
interface GigabitEthernet1/0/0
undo shutdown
#
interface GigabitEthernet 1/0/0.1
vlan-type dot1q 2
mpls l2vc 192.168.2.2 100
#
interface GigabitEthernet2/0/0
undo shutdown
ip address 10.2.2.2 255.255.255.0
mpls
mpls ldp
#
interface LoopBack0
ip address 192.168.3.3 255.255.255.255
#
ospf 1
area 0.0.0.0
network 192.168.3.3 0.0.0.0
network 10.2.2.0 0.0.0.255
#
return
CE2的配置文件
#
sysname CE2
#
interface GigabitEthernet1/0/0
undo shutdown
#
interface GigabitEthernet1/0/0.1
vlan-type dot1q 2
ip address 10.10.1.2 255.255.255.0
#
return